Olá, meu primo trouxe o not dele para minha casa então baixei uns programas para fazer esta mod... Mas esqueci de deixar o .RAR do crypter original salvo e deletei, e também não fiz uma cópia da stub original então não vou colocar o scan da stub original porque tou sem ela. A stub original tem em torno de 490KB eu adicionei size até 1MB para quitar o Kasper.

Ferramentas utilizadas para a MoD:

*Stud_PE
*OllyDbg
*CFF Explorer
*Hex Editor

Imagen


Só baixei o SpyNet aqui, então fiquem avontade para testar em outros...
Scan Encryped SpyNet 2.6:

Filename: SpyNet 2.6.exe
Filesize: 1,29 MB
Date: 2016-06-23 23:18:15
MD5: 1871a4f7840c15a0b712f489123e739f
SHA1: e842ce1341d3650dc7fe6b66adeb6a63a6fb8d7f
Status: Infected
Rate: 1/35

Details:
Ad-Aware - File is clean
A-Squared - File is clean
Avast - File is clean
AVG Free - File is clean
AntiVir (Avira) - TR/Dropper.Gen
BitDefender - File is clean
BullGuard - File is clean
Clam Antivirus - File is clean
COMODO Internet Security - File is clean
Dr.Web - File is clean
ESET NOD32 - File is clean
eTrust-Vet - File is clean
FortiClient - File is clean
F-PROT Antivirus - File is clean
F-Secure Internet Security - File is clean
G Data - File is clean
IKARUS Security - File is clean
K7 Ultimate - File is clean
Kaspersky Antivirus - File is clean
McAfee - File is clean
MS Security Essentials - File is clean
NANO Antivirus - File is clean
Norman - File is clean
Norton Antivirus - File is clean
Panda CommandLine - File is clean
Panda Security - File is clean
Quick Heal Antivirus - File is clean
Solo Antivirus - File is clean
Sophos - File is clean
SUPERAntiSpyware - File is clean
Trend Micro Internet Security - File is clean
Twister Antivirus - File is clean
VBA32 Antivirus - File is clean
VIPRE - File is clean
Zoner AntiVirus - File is clean

Scan Result: [Enlace externo eliminado para invitados]
[Enlace externo eliminado para invitados]

[Enlace externo eliminado para invitados]
[/center]
Skype: mh1tzzz
Modifiquei a Stub e agora esta fud. Se alguum mod/adm puder trocar o download esta ai: [Enlace externo eliminado para invitados]

Stub:

Filename: .exe
Filesize: 1,02 MB
Date: 2016-06-24 00:08:42
MD5: 201fa3cfcabf2a47ae394687753128b0
SHA1: 0fb895b17238d8423903691ba0b09327dd12ca6d
Status: Clean
Rate: 0/35

Details:
Ad-Aware - File is clean
A-Squared - File is clean
Avast - File is clean
AVG Free - File is clean
AntiVir (Avira) - File is clean
BitDefender - File is clean
BullGuard - File is clean
Clam Antivirus - File is clean
COMODO Internet Security - File is clean
Dr.Web - File is clean
ESET NOD32 - File is clean
eTrust-Vet - File is clean
FortiClient - File is clean
F-PROT Antivirus - File is clean
F-Secure Internet Security - File is clean
G Data - File is clean
IKARUS Security - File is clean
K7 Ultimate - File is clean
Kaspersky Antivirus - File is clean
McAfee - File is clean
MS Security Essentials - File is clean
NANO Antivirus - File is clean
Norman - File is clean
Norton Antivirus - File is clean
Panda CommandLine - File is clean
Panda Security - File is clean
Quick Heal Antivirus - File is clean
Solo Antivirus - File is clean
Sophos - File is clean
SUPERAntiSpyware - File is clean
Trend Micro Internet Security - File is clean
Twister Antivirus - File is clean
VBA32 Antivirus - File is clean
VIPRE - File is clean
Zoner AntiVirus - File is clean

Scan Result: [Enlace externo eliminado para invitados]
[Enlace externo eliminado para invitados]


Filename: SpyNet 2.6.exe
Filesize: 1,29 MB
Date: 2016-06-23 23:59:24
MD5: 2013aceeda1c85eb90caaca5050eb879
SHA1: 149b5c9be874c1f9cf99a5da4325b32d748861cc
Status: Clean
Rate: 0/35

Details:
Ad-Aware - File is clean
A-Squared - File is clean
Avast - File is clean
AVG Free - File is clean
AntiVir (Avira) - File is clean
BitDefender - File is clean
BullGuard - File is clean
Clam Antivirus - File is clean
COMODO Internet Security - File is clean
Dr.Web - File is clean
ESET NOD32 - File is clean
eTrust-Vet - File is clean
FortiClient - File is clean
F-PROT Antivirus - File is clean
F-Secure Internet Security - File is clean
G Data - File is clean
IKARUS Security - File is clean
K7 Ultimate - File is clean
Kaspersky Antivirus - File is clean
McAfee - File is clean
MS Security Essentials - File is clean
NANO Antivirus - File is clean
Norman - File is clean
Norton Antivirus - File is clean
Panda CommandLine - File is clean
Panda Security - File is clean
Quick Heal Antivirus - File is clean
Solo Antivirus - File is clean
Sophos - File is clean
SUPERAntiSpyware - File is clean
Trend Micro Internet Security - File is clean
Twister Antivirus - File is clean
VBA32 Antivirus - File is clean
VIPRE - File is clean
Zoner AntiVirus - File is clean

Scan Result: [Enlace externo eliminado para invitados]
[Enlace externo eliminado para invitados]
Skype: mh1tzzz
No se lo que has puesto en el principio del post, pero le has metido traca de kbs al stub igual con menos peso lo sacas igual, no obstante bien esta.

Un saludo
Imagen
Responder

Volver a “Troyanos y Herramientas”